CWE-428

Unquoted Search Path or Element

Parent: CWE-668 - Exposure of Resource to Wrong Sphere

The product uses a search path that contains an unquoted element, in which the element contains whitespace or other separators. This can cause the product to access resources in a parent path.

451 vulnerabilities with CWE-428
CVE-2016-20094 HIGH
AnyDesk 2.5.0 Unquoted Service Path Elevation of Privilege
CVSS 7.8
CVE-2016-20093 HIGH
Wise Care 365 4.27 and Wise Disk Cleaner 9.29 Unquoted Service Path Privilege Escalation
CVSS 7.8
CVE-2016-20092 HIGH
NetDrive 2.6.12 Unquoted Service Path Elevation of Privilege
CVSS 7.8
CVE-2016-20091 HIGH
Windows Firewall Control 4.8.6.0 Unquoted Service Path Privilege Escalation
CVSS 7.8
CVE-2016-20090 HIGH
Comodo Dragon Browser 52.15.25.663 Privilege Escalation via Unquoted Service Path
CVSS 7.8
CVE-2016-20089 HIGH
Iperius Remote 1.7.0 Unquoted Service Path Elevation of Privilege
CVSS 7.8
CVE-2016-20088 HIGH
Comodo Chromodo Browser 52.15.25.664 Unquoted Service Path Privilege Escalation
CVSS 7.8
CVE-2016-20087 HIGH
Fortitude HTTP 1.0.4.0 Unquoted Service Path Elevation of Privilege
CVSS 7.8
CVE-2016-20086 HIGH
Vembu StoreGrid 4.0 Unquoted Service Path Privilege Escalation
CVSS 7.8
CVE-2016-20085 HIGH
Realtek High Definition Audio Driver 6.0.1.6730 Privilege Escalation
CVSS 7.8
CVE-2016-20061 HIGH
sheed AntiVirus 2.3 Unquoted Service Path Privilege Escalation
CVSS 7.8
CVE-2016-20060 HIGH
Hotspot Shield 6.0.3 Unquoted Service Path Privilege Escalation
CVSS 7.8
CVE-2016-20059 HIGH
IObit Malware Fighter 4.3.1 Unquoted Service Path Privilege Escalation
CVSS 7.8
CVE-2016-20058 HIGH
Netgate AMITI Antivirus build 23.0.305 Unquoted Service Path Privilege Escalation
CVSS 7.8
CVE-2016-20057 HIGH
NETGATE Registry Cleaner build 16.0.205 Unquoted Service Path Privilege Escalation
CVSS 7.8
CVE-2016-20056 HIGH
Spy Emergency build 23.0.205 Unquoted Service Path Privilege Escalation
CVSS 7.8
CVE-2016-20055 HIGH
IObit Advanced SystemCare 10.0.2 Unquoted Service Path Privilege Escalation
CVSS 7.8
CVE-2016-15003 MEDIUM
FileZilla Client 3.17.0.0 - Unquoted Search Path
CVSS 6.3
CVE-2016-8225 HIGH
Lenovo Edge & Lenovo Slim USB Keyboard Driver <1.21 - Privilege Esc...
CVSS 7.8
CVE-2016-6935 HIGH
Adobe Creative Cloud Desktop <3.8.0.310 - Privilege Escalation
CVSS 7.8
CVE-2016-5793 HIGH
Moxa Active OPC Server <2.4.19 - Privilege Escalation
CVSS 8.8
CVE-2015-4173
Dell SonicWall NetExtender <8.0.238 - Privilege Escalation
CVE-2014-5455 MEDIUM
ptservice <3.0 - Privilege Escalation
CVSS 5.3
CVE-2014-0759 MEDIUM
Schneider Electric Floating License Manager <1.4.0 - Privilege Esca...
CVSS 5.9
CVE-2013-1609 HIGH
Symantec EV <9.0.4, <10.0.1 - Privilege Escalation
CVSS 7.8
Details
Vulnerabilities 451